Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Improve the accurate of the analysis #41

Open
eliasgranderubio opened this issue Oct 14, 2018 · 0 comments
Open

Improve the accurate of the analysis #41

eliasgranderubio opened this issue Oct 14, 2018 · 0 comments

Comments

@eliasgranderubio
Copy link
Owner

Short description

Improve the accurate of the analysis for avoiding false positives in a static security analysis.

Actual results

Dagda shows false positives and doesn't look like accurate in some analysis. More info in the next link:

Solution

A possible solution for this issue would be review how de packages and dependencies names and versions are collected, and how this information is compared against vulnerability database.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
Development

No branches or pull requests

1 participant